Release date:
Updated on:
Affected Systems:
Apple iOS
Description:
--------------------------------------------------------------------------------
Bugtraq id: 66236
IOS is an operating system developed by Apple for mobile devices. It supports iPhone, iPod touch, iPad, and Apple TV. Apple TV is a digital multi-media machine designed, marketed, and sold by Apple.
A security vulnerability exists in the random number generator of Apple iOS 7 to generate predictable results. Attackers can use the Early Random PRNG brute force cracking in the mobile operating system to bypass Multiple kernel protection mechanisms.
<* Source: Tarjei Mandt
Link: http://it.slashdot.org/story/14/03/14/1458235/weak-apple-prng-threatens-ios-exploit-mitigations
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Apple
-----
Currently, the vendor does not provide patches or upgrade programs. We recommend that users who use the software follow the vendor's homepage to obtain the latest version:
Http://www.apple.com/support/downloads/